cbcvebase.
CVE-2017-15101
published 2018-07-27

CVE-2017-15101: A missing patch for a stack-based buffer overflow in findTable() was found in Red Hat version of liblouis before 2.5.4. An attacker could cause a denial of…

critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
A missing patch for a stack-based buffer overflow in findTable() was found in Red Hat version of liblouis before 2.5.4. An attacker could cause a denial of service condition or potentially even arbitrary code execution.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianliblouis
liblouisliblouis< 2.5.42.5.4
liblouisliblouis
liblouisliblouis>= 0 < 2.5.3-2ubuntu1.22.5.3-2ubuntu1.2
redhatenterprise_linux_desktop
redhatenterprise_linux_server
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_eus
redhatenterprise_linux_server_eus
redhatenterprise_linux_workstation

CVSS provenance

nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL